KNIME Analytics Platform before 4.5.0 is vulnerable to XXE (external XML entity injection) via a crafted workflow file (.knwf), aka AP-17730.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-12-16T00:00:00
Updated: 2024-08-04T04:32:13.524Z
Reserved: 2021-12-16T00:00:00
Link: CVE-2021-45096
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-16T05:15:08.610
Modified: 2024-11-21T06:31:56.780
Link: CVE-2021-45096
Redhat
No data.